Security Operations Center Analyst (L1)
SecurityHQ · London Area, United Kingdom
Apply & track with Apply EdgeAbout the Role Are you passionate about cyber security and looking for an opportunity to build your career within a SOC? We are looking for a Security Analyst L1 to join our SOC team. Whether you’re a recent graduate ready to start your career in cyber security, or you already have 1 to 2 years of experience within a SOC, IT security or cyber environment, we’d love to hear from you. What matters to us is a genuine passion for cyber security, curiosity about how threats work, and the motivation to keep learning and developing. You’ll be at the heart of our security operations, monitoring and investigating potential threats and helping to protect our customers from real world cyber incidents. You’ll gain exposure to technologies including SIEM, EDR, endpoint and network security tools, while continuing to develop your incident response and investigative skills. This role is hybrid, with three days per week in our Blackfriars office. The SOC operates on a shift rotation across Monday to Sunday, including UK bank holidays. About SecurityHQ SecurityHQ is a global cybersecurity company. Our specialist teams design, engineer and manage solutions that do three things: Promote clarity and trust in a complex world. Build momentum around improving security posture. And increase the value of cybersecurity investment within organizations. Free from limitations, and inclusive of all requirements, we focus on defending today, while mitigating the risks of tomorrow. And into the future. Our solutions are tailored to our customers and their unique context. Around the clock, 365 days per year, our customers are never alone. SecurityHQ – We’re focused on engineering cybersecurity, by design. Responsibilities
- Monitor security alerts and events across SIEM, EDR, network and endpoint security platforms.
- Investigate and triage alerts to identify potential cyber threats.
- Analyse security events, logs and network traffic for suspicious or malicious activity.
- Support the response to security incidents, including containment, eradication and recovery.
- Escalate complex or higher risk incidents to senior analysts.
- Support incident response and forensic investigations.
- Produce clear incident reports, case notes and customer updates.
- Communicate with customers throughout security investigations.
- Work closely with experienced analysts and wider internal teams to resolve incidents effectively. What We Are Looking For We’re looking for someone who is genuinely excited by cyber security and wants to build their career in a hands on SOC environment. You may already have some SOC, IT security or cyber security experience, but we are also open to graduates and early career candidates who can demonstrate strong technical knowledge and a real passion for cyber. Ideally, you’ll bring:
- Knowledge of cyber security fundamentals and common threats such as phishing and malware.
- An understanding of SIEM and/or EDR technologies.
- Knowledge of Windows and Linux environments.
- A good understanding of networking fundamentals and protocols.
- Awareness of the MITRE ATT&CK framework.
- Strong analytical and problem solving skills.
- The curiosity to investigate, ask questions and understand the story behind an alert.
- Confidence communicating technical information clearly.
- A willingness to learn and continuously develop your cyber security knowledge. You’ll also need to hold at least one of the following certifications: Blue Team Level 1 (BTL1), CompTIA Security+ or CompTIA Network+. If cyber security is something you’re genuinely passionate about and you’re looking for an opportunity to learn, develop and build your career within a SOC, we’d love to hear from you.